Files
websec-audit/demo/report/example.txt
T
2026-03-23 16:48:28 +01:00

1075 lines
72 KiB
Plaintext
Raw Blame History

This file contains ambiguous Unicode characters
This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.
════════════════════════════════════════════════════════════════
WEBSEC-AUDIT v1.0.1 — Security Audit Report
════════════════════════════════════════════════════════════════
Target : https://example.com
IP : 104.18.27.120
Date : 2026-03-23 16:15:31
Duration : 1541s
Auditor : root@debian12
════════════════════════════════════════════════════════════════
RISK SUMMARY
──────────────────────────────────────────────────
CRITICAL 4
HIGH 2
MEDIUM 25
LOW 66
INFO 7
TOTAL 104
════════════════════════════════════════════════════════════════
FINDINGS
════════════════════════════════════════════════════════════════
[001] [INFO ] [INIT] Audit started against https://example.com
Description : Resolved IP: 104.18.27.120 | Mode: NORMAL
Timestamp : 2026-03-23T15:15:36Z
[002] [INFO ] [RECON] WHOIS data collected for example.com
Description : Registrar: N/A | Expiry: 2026-08-13
Timestamp : 2026-03-23T15:15:36Z
[003] [INFO ] [RECON] Subdomain enumeration: 37616 hosts discovered
Description : 0000.example.com 001.example.com 01.example.com 02.example.com 03.example.com 03----may----rrdd.example.com 04.example.com 05----apr----rrdd.example.com 05.example.com 06----apr----rrdd.example.com
Evidence : /root/websec-audit/results_example_com_20260323_161531/recon/subdomains.txt
Timestamp : 2026-03-23T15:16:22Z
[004] [INFO ] [FINGERPRINT] WAF detected: Cloudflare (Cloudflare Inc.) WAF.
Description : The target appears to be protected by a Web Application Firewall.
Evidence : Cloudflare (Cloudflare Inc.) WAF.
Timestamp : 2026-03-23T15:16:25Z
[005] [LOW ] [FINGERPRINT] Version disclosure via 'Server' header
Description : The server reveals technology/version info in response headers.
Evidence : server: cloudflare
Remediation : Remove or neutralise the 'Server' header in your web server configuration.
Timestamp : 2026-03-23T15:16:25Z
[006] [LOW ] [SSL] testssl: [TLS1] offered (deprecated)
Remediation : Refer to testssl documentation for TLS1
Timestamp : 2026-03-23T15:19:44Z
[007] [LOW ] [SSL] testssl: [TLS1_1] offered (deprecated)
Remediation : Refer to testssl documentation for TLS1_1
Timestamp : 2026-03-23T15:19:44Z
[008] [MEDIUM ] [SSL] testssl: [cipherlist_3DES_IDEA] offered
Remediation : Refer to testssl documentation for cipherlist_3DES_IDEA
Timestamp : 2026-03-23T15:19:44Z
[009] [LOW ] [SSL] testssl: [cipherlist_OBSOLETED] offered
Remediation : Refer to testssl documentation for cipherlist_OBSOLETED
Timestamp : 2026-03-23T15:19:44Z
[010] [LOW ] [SSL] testssl: [cipher-tls1_xc013] TLSv1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_xc013
Timestamp : 2026-03-23T15:19:44Z
[011] [LOW ] [SSL] testssl: [cipher-tls1_x2f] TLSv1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x2f
Timestamp : 2026-03-23T15:19:44Z
[012] [LOW ] [SSL] testssl: [cipher-tls1_xc014] TLSv1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_xc014
Timestamp : 2026-03-23T15:19:44Z
[013] [LOW ] [SSL] testssl: [cipher-tls1_x35] TLSv1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x35
Timestamp : 2026-03-23T15:19:44Z
[014] [MEDIUM ] [SSL] testssl: [cipher-tls1_x0a] TLSv1 x0a DES-CBC3-SHA RSA 3DES 168 TLS_RSA_WITH_3DES_EDE_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x0a
Timestamp : 2026-03-23T15:19:44Z
[015] [LOW ] [SSL] testssl: [cipher-tls1_1_xc013] TLSv1.1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_xc013
Timestamp : 2026-03-23T15:19:44Z
[016] [LOW ] [SSL] testssl: [cipher-tls1_1_x2f] TLSv1.1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_x2f
Timestamp : 2026-03-23T15:19:44Z
[017] [LOW ] [SSL] testssl: [cipher-tls1_1_xc014] TLSv1.1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_xc014
Timestamp : 2026-03-23T15:19:44Z
[018] [LOW ] [SSL] testssl: [cipher-tls1_1_x35] TLSv1.1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_x35
Timestamp : 2026-03-23T15:19:44Z
[019] [LOW ] [SSL] testssl: [cipher-tls1_2_xc009] TLSv1.2 xc009 ECDHE-ECDSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc009
Timestamp : 2026-03-23T15:19:44Z
[020] [LOW ] [SSL] testssl: [cipher-tls1_2_xc00a] TLSv1.2 xc00a ECDHE-ECDSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc00a
Timestamp : 2026-03-23T15:19:44Z
[021] [LOW ] [SSL] testssl: [cipher-tls1_2_xc023] TLSv1.2 xc023 ECDHE-ECDSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc023
Timestamp : 2026-03-23T15:19:44Z
[022] [LOW ] [SSL] testssl: [cipher-tls1_2_xc024] TLSv1.2 xc024 ECDHE-ECDSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc024
Timestamp : 2026-03-23T15:19:44Z
[023] [LOW ] [SSL] testssl: [cipher-tls1_2_xc013] TLSv1.2 xc013 ECDHE-RSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc013
Timestamp : 2026-03-23T15:19:45Z
[024] [LOW ] [SSL] testssl: [cipher-tls1_2_x2f] TLSv1.2 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_x2f
Timestamp : 2026-03-23T15:19:45Z
[025] [LOW ] [SSL] testssl: [cipher-tls1_2_xc014] TLSv1.2 xc014 ECDHE-RSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc014
Timestamp : 2026-03-23T15:19:45Z
[026] [LOW ] [SSL] testssl: [cipher-tls1_2_x35] TLSv1.2 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_x35
Timestamp : 2026-03-23T15:19:45Z
[027] [LOW ] [SSL] testssl: [cipher-tls1_2_xc027] TLSv1.2 xc027 ECDHE-RSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA25
Remediation : Refer to testssl documentation for cipher-tls1_2_xc027
Timestamp : 2026-03-23T15:19:45Z
[028] [LOW ] [SSL] testssl: [cipher-tls1_2_x3c] TLSv1.2 x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
Remediation : Refer to testssl documentation for cipher-tls1_2_x3c
Timestamp : 2026-03-23T15:19:45Z
[029] [LOW ] [SSL] testssl: [cipher-tls1_2_xc028] TLSv1.2 xc028 ECDHE-RSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA38
Remediation : Refer to testssl documentation for cipher-tls1_2_xc028
Timestamp : 2026-03-23T15:19:45Z
[030] [LOW ] [SSL] testssl: [cipher-tls1_2_x3d] TLSv1.2 x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
Remediation : Refer to testssl documentation for cipher-tls1_2_x3d
Timestamp : 2026-03-23T15:19:45Z
[031] [HIGH ] [SSL] testssl: [cert_keyUsage <hostCert#1>] Certificate incorrectly used for key encipherment: 'Digital Signature'
Remediation : Refer to testssl documentation for cert_keyUsage <hostCert#1>
Timestamp : 2026-03-23T15:19:45Z
[032] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#1>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
Remediation : Refer to testssl documentation for cert_chain_of_trust <hostCert#1>
Timestamp : 2026-03-23T15:19:45Z
[033] [MEDIUM ] [SSL] testssl: [cert_expirationStatus <hostCert#1>] expires < 60 days (52)
Remediation : Refer to testssl documentation for cert_expirationStatus <hostCert#1>
Timestamp : 2026-03-23T15:19:45Z
[034] [MEDIUM ] [SSL] testssl: [cert_notAfter <hostCert#1>] 2026-05-14 18:57
Remediation : Refer to testssl documentation for cert_notAfter <hostCert#1>
Timestamp : 2026-03-23T15:19:45Z
[035] [LOW ] [SSL] testssl: [DNS_CAArecord <hostCert#1>] --
Remediation : Refer to testssl documentation for DNS_CAArecord <hostCert#1>
Timestamp : 2026-03-23T15:19:45Z
[036] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#2>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
Remediation : Refer to testssl documentation for cert_chain_of_trust <hostCert#2>
Timestamp : 2026-03-23T15:19:45Z
[037] [MEDIUM ] [SSL] testssl: [cert_expirationStatus <hostCert#2>] expires < 60 days (52)
Remediation : Refer to testssl documentation for cert_expirationStatus <hostCert#2>
Timestamp : 2026-03-23T15:19:45Z
[038] [MEDIUM ] [SSL] testssl: [cert_notAfter <hostCert#2>] 2026-05-14 18:57
Remediation : Refer to testssl documentation for cert_notAfter <hostCert#2>
Timestamp : 2026-03-23T15:19:45Z
[039] [LOW ] [SSL] testssl: [DNS_CAArecord <hostCert#2>] --
Remediation : Refer to testssl documentation for DNS_CAArecord <hostCert#2>
Timestamp : 2026-03-23T15:19:45Z
[040] [LOW ] [SSL] testssl: [HSTS] not offered
Remediation : Refer to testssl documentation for HSTS
Timestamp : 2026-03-23T15:19:46Z
[041] [MEDIUM ] [SSL] testssl: [security_headers] --
Remediation : Refer to testssl documentation for security_headers
Timestamp : 2026-03-23T15:19:46Z
[042] [MEDIUM ] [SSL] testssl: [BREACH] potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested
Remediation : Refer to testssl documentation for BREACH
Timestamp : 2026-03-23T15:19:46Z
[043] [LOW ] [SSL] testssl: [SWEET32] uses 64 bit block ciphers
Remediation : Refer to testssl documentation for SWEET32
Timestamp : 2026-03-23T15:19:46Z
[044] [MEDIUM ] [SSL] testssl: [BEAST_CBC_TLS1] ECDHE-RSA-AES128-SHA AES128-SHA ECDHE-RSA-AES256-SHA AES256-SHA DES-CBC3-SHA
Remediation : Refer to testssl documentation for BEAST_CBC_TLS1
Timestamp : 2026-03-23T15:19:46Z
[045] [LOW ] [SSL] testssl: [BEAST] VULNERABLE -- but also supports higher protocols TLSv1.1 TLSv1.2 (likely mitigated)
Remediation : Refer to testssl documentation for BEAST
Timestamp : 2026-03-23T15:19:46Z
[046] [LOW ] [SSL] testssl: [LUCKY13] potentially vulnerable, uses TLS CBC ciphers
Remediation : Refer to testssl documentation for LUCKY13
Timestamp : 2026-03-23T15:19:46Z
[047] [MEDIUM ] [SSL] testssl: [overall_grade] B
Remediation : Refer to testssl documentation for overall_grade
Timestamp : 2026-03-23T15:19:46Z
[048] [LOW ] [SSL] testssl: [TLS1] offered (deprecated)
Remediation : Refer to testssl documentation for TLS1
Timestamp : 2026-03-23T15:19:46Z
[049] [LOW ] [SSL] testssl: [TLS1_1] offered (deprecated)
Remediation : Refer to testssl documentation for TLS1_1
Timestamp : 2026-03-23T15:19:46Z
[050] [MEDIUM ] [SSL] testssl: [cipherlist_3DES_IDEA] offered
Remediation : Refer to testssl documentation for cipherlist_3DES_IDEA
Timestamp : 2026-03-23T15:19:46Z
[051] [LOW ] [SSL] testssl: [cipherlist_OBSOLETED] offered
Remediation : Refer to testssl documentation for cipherlist_OBSOLETED
Timestamp : 2026-03-23T15:19:46Z
[052] [LOW ] [SSL] testssl: [cipher-tls1_xc013] TLSv1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_xc013
Timestamp : 2026-03-23T15:19:46Z
[053] [LOW ] [SSL] testssl: [cipher-tls1_x2f] TLSv1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x2f
Timestamp : 2026-03-23T15:19:46Z
[054] [LOW ] [SSL] testssl: [cipher-tls1_xc014] TLSv1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_xc014
Timestamp : 2026-03-23T15:19:46Z
[055] [LOW ] [SSL] testssl: [cipher-tls1_x35] TLSv1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x35
Timestamp : 2026-03-23T15:19:46Z
[056] [MEDIUM ] [SSL] testssl: [cipher-tls1_x0a] TLSv1 x0a DES-CBC3-SHA RSA 3DES 168 TLS_RSA_WITH_3DES_EDE_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_x0a
Timestamp : 2026-03-23T15:19:46Z
[057] [LOW ] [SSL] testssl: [cipher-tls1_1_xc013] TLSv1.1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_xc013
Timestamp : 2026-03-23T15:19:47Z
[058] [LOW ] [SSL] testssl: [cipher-tls1_1_x2f] TLSv1.1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_x2f
Timestamp : 2026-03-23T15:19:47Z
[059] [LOW ] [SSL] testssl: [cipher-tls1_1_xc014] TLSv1.1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_xc014
Timestamp : 2026-03-23T15:19:47Z
[060] [LOW ] [SSL] testssl: [cipher-tls1_1_x35] TLSv1.1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_1_x35
Timestamp : 2026-03-23T15:19:47Z
[061] [LOW ] [SSL] testssl: [cipher-tls1_2_xc009] TLSv1.2 xc009 ECDHE-ECDSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc009
Timestamp : 2026-03-23T15:19:47Z
[062] [LOW ] [SSL] testssl: [cipher-tls1_2_xc00a] TLSv1.2 xc00a ECDHE-ECDSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc00a
Timestamp : 2026-03-23T15:19:47Z
[063] [LOW ] [SSL] testssl: [cipher-tls1_2_xc023] TLSv1.2 xc023 ECDHE-ECDSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc023
Timestamp : 2026-03-23T15:19:47Z
[064] [LOW ] [SSL] testssl: [cipher-tls1_2_xc024] TLSv1.2 xc024 ECDHE-ECDSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc024
Timestamp : 2026-03-23T15:19:47Z
[065] [LOW ] [SSL] testssl: [cipher-tls1_2_xc013] TLSv1.2 xc013 ECDHE-RSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc013
Timestamp : 2026-03-23T15:19:47Z
[066] [LOW ] [SSL] testssl: [cipher-tls1_2_x2f] TLSv1.2 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_x2f
Timestamp : 2026-03-23T15:19:47Z
[067] [LOW ] [SSL] testssl: [cipher-tls1_2_xc014] TLSv1.2 xc014 ECDHE-RSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_xc014
Timestamp : 2026-03-23T15:19:47Z
[068] [LOW ] [SSL] testssl: [cipher-tls1_2_x35] TLSv1.2 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
Remediation : Refer to testssl documentation for cipher-tls1_2_x35
Timestamp : 2026-03-23T15:19:47Z
[069] [LOW ] [SSL] testssl: [cipher-tls1_2_xc027] TLSv1.2 xc027 ECDHE-RSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA25
Remediation : Refer to testssl documentation for cipher-tls1_2_xc027
Timestamp : 2026-03-23T15:19:47Z
[070] [LOW ] [SSL] testssl: [cipher-tls1_2_x3c] TLSv1.2 x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
Remediation : Refer to testssl documentation for cipher-tls1_2_x3c
Timestamp : 2026-03-23T15:19:47Z
[071] [LOW ] [SSL] testssl: [cipher-tls1_2_xc028] TLSv1.2 xc028 ECDHE-RSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA38
Remediation : Refer to testssl documentation for cipher-tls1_2_xc028
Timestamp : 2026-03-23T15:19:47Z
[072] [LOW ] [SSL] testssl: [cipher-tls1_2_x3d] TLSv1.2 x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
Remediation : Refer to testssl documentation for cipher-tls1_2_x3d
Timestamp : 2026-03-23T15:19:47Z
[073] [HIGH ] [SSL] testssl: [cert_keyUsage <hostCert#1>] Certificate incorrectly used for key encipherment: 'Digital Signature'
Remediation : Refer to testssl documentation for cert_keyUsage <hostCert#1>
Timestamp : 2026-03-23T15:19:47Z
[074] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#1>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
Remediation : Refer to testssl documentation for cert_chain_of_trust <hostCert#1>
Timestamp : 2026-03-23T15:19:47Z
[075] [MEDIUM ] [SSL] testssl: [cert_expirationStatus <hostCert#1>] expires < 60 days (52)
Remediation : Refer to testssl documentation for cert_expirationStatus <hostCert#1>
Timestamp : 2026-03-23T15:19:47Z
[076] [MEDIUM ] [SSL] testssl: [cert_notAfter <hostCert#1>] 2026-05-14 18:57
Remediation : Refer to testssl documentation for cert_notAfter <hostCert#1>
Timestamp : 2026-03-23T15:19:48Z
[077] [LOW ] [SSL] testssl: [DNS_CAArecord <hostCert#1>] --
Remediation : Refer to testssl documentation for DNS_CAArecord <hostCert#1>
Timestamp : 2026-03-23T15:19:48Z
[078] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#2>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
Remediation : Refer to testssl documentation for cert_chain_of_trust <hostCert#2>
Timestamp : 2026-03-23T15:19:48Z
[079] [MEDIUM ] [SSL] testssl: [cert_expirationStatus <hostCert#2>] expires < 60 days (52)
Remediation : Refer to testssl documentation for cert_expirationStatus <hostCert#2>
Timestamp : 2026-03-23T15:19:48Z
[080] [MEDIUM ] [SSL] testssl: [cert_notAfter <hostCert#2>] 2026-05-14 18:57
Remediation : Refer to testssl documentation for cert_notAfter <hostCert#2>
Timestamp : 2026-03-23T15:19:48Z
[081] [LOW ] [SSL] testssl: [DNS_CAArecord <hostCert#2>] --
Remediation : Refer to testssl documentation for DNS_CAArecord <hostCert#2>
Timestamp : 2026-03-23T15:19:48Z
[082] [LOW ] [SSL] testssl: [HSTS] not offered
Remediation : Refer to testssl documentation for HSTS
Timestamp : 2026-03-23T15:19:48Z
[083] [MEDIUM ] [SSL] testssl: [security_headers] --
Remediation : Refer to testssl documentation for security_headers
Timestamp : 2026-03-23T15:19:48Z
[084] [MEDIUM ] [SSL] testssl: [BREACH] potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested
Remediation : Refer to testssl documentation for BREACH
Timestamp : 2026-03-23T15:19:48Z
[085] [LOW ] [SSL] testssl: [SWEET32] uses 64 bit block ciphers
Remediation : Refer to testssl documentation for SWEET32
Timestamp : 2026-03-23T15:19:48Z
[086] [MEDIUM ] [SSL] testssl: [BEAST_CBC_TLS1] ECDHE-RSA-AES128-SHA AES128-SHA ECDHE-RSA-AES256-SHA AES256-SHA DES-CBC3-SHA
Remediation : Refer to testssl documentation for BEAST_CBC_TLS1
Timestamp : 2026-03-23T15:19:48Z
[087] [LOW ] [SSL] testssl: [BEAST] VULNERABLE -- but also supports higher protocols TLSv1.1 TLSv1.2 (likely mitigated)
Remediation : Refer to testssl documentation for BEAST
Timestamp : 2026-03-23T15:19:48Z
[088] [LOW ] [SSL] testssl: [LUCKY13] potentially vulnerable, uses TLS CBC ciphers
Remediation : Refer to testssl documentation for LUCKY13
Timestamp : 2026-03-23T15:19:48Z
[089] [MEDIUM ] [SSL] testssl: [overall_grade] B
Remediation : Refer to testssl documentation for overall_grade
Timestamp : 2026-03-23T15:19:48Z
[090] [MEDIUM ] [SSL] Certificate expires in 52 days
Evidence : May 14 18:57:50 2026 GMT
Remediation : Plan certificate renewal.
Timestamp : 2026-03-23T15:19:48Z
[091] [MEDIUM ] [SSL] HSTS header not configured
Description : Strict-Transport-Security is absent — browsers may access the site over HTTP.
Remediation : Add: Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Timestamp : 2026-03-23T15:19:49Z
[092] [LOW ] [HEADERS] Permissions-Policy missing
Description : The response is missing the 'permissions-policy' security header.
Remediation : Add: Permissions-Policy: geolocation=(), microphone=(), camera=()
Timestamp : 2026-03-23T15:19:49Z
[093] [LOW ] [HEADERS] Cross-Origin-Resource-Policy (CORP) missing
Description : The response is missing the 'cross-origin-resource-policy' security header.
Remediation : Add: Cross-Origin-Resource-Policy: same-origin
Timestamp : 2026-03-23T15:19:49Z
[094] [LOW ] [HEADERS] Cross-Origin-Opener-Policy (COOP) missing
Description : The response is missing the 'cross-origin-opener-policy' security header.
Remediation : Add: Cross-Origin-Opener-Policy: same-origin
Timestamp : 2026-03-23T15:19:49Z
[095] [LOW ] [HEADERS] X-Content-Type-Options missing — MIME sniffing risk
Description : The response is missing the 'x-content-type-options' security header.
Remediation : Add: X-Content-Type-Options: nosniff
Timestamp : 2026-03-23T15:19:49Z
[096] [MEDIUM ] [HEADERS] X-Frame-Options missing — clickjacking risk
Description : The response is missing the 'x-frame-options' security header.
Remediation : Add: X-Frame-Options: SAMEORIGIN
Timestamp : 2026-03-23T15:19:49Z
[097] [MEDIUM ] [HEADERS] Content-Security-Policy (CSP) missing
Description : The response is missing the 'content-security-policy' security header.
Remediation : Implement a strict CSP to mitigate XSS and data injection attacks.
Timestamp : 2026-03-23T15:19:49Z
[098] [LOW ] [HEADERS] Referrer-Policy missing
Description : The response is missing the 'referrer-policy' security header.
Remediation : Add: Referrer-Policy: strict-origin-when-cross-origin
Timestamp : 2026-03-23T15:19:49Z
[099] [LOW ] [HEADERS] Informative header exposed: Server
Description : Server reveals technology details via 'Server' header.
Evidence : server: cloudflare
Remediation : Remove or anonymise the 'Server' header in your server configuration.
Timestamp : 2026-03-23T15:19:49Z
[100] [MEDIUM ] [HEADERS] HTTP does not redirect to HTTPS (HTTP 200)
Description : Requests over HTTP are not automatically upgraded to HTTPS.
Evidence : http://example.com → 200
Remediation : Configure a permanent 301 redirect from HTTP to HTTPS.
Timestamp : 2026-03-23T15:19:49Z
[101] [LOW ] [HEADERS] Cache-Control header missing
Description : Without Cache-Control, sensitive pages may be cached by intermediaries.
Remediation : Add: Cache-Control: no-store, no-cache on authenticated/sensitive pages.
Timestamp : 2026-03-23T15:19:49Z
[102] [INFO ] [SQLI] No obvious SQLi on primary URL
Description : Manual testing with specific parameters recommended.
Timestamp : 2026-03-23T15:20:05Z
[103] [INFO ] [CMS] CMS detected: unknown
Timestamp : 2026-03-23T15:21:12Z
[104] [INFO ] [SSRF] No in-band SSRF detected on common parameters
Description : Out-of-band (OOB) SSRF may still exist. Use Burp Collaborator or Interactsh for blind testing.
Timestamp : 2026-03-23T15:26:05Z
════════════════════════════════════════════════════════════════
FULL AUDIT LOG
════════════════════════════════════════════════════════════════
[16:15:36] [INFO] Starting websec-audit v1.0.1 | PID: 79121
══════════════════════════════════════════════════════════════
▸ DEPENDENCY CHECK
══════════════════════════════════════════════════════════════
[16:15:36] [OK] [required] curl
[16:15:36] [OK] [required] nmap
[16:15:36] [OK] [optional] nikto
[16:15:36] [OK] [optional] sqlmap
[16:15:36] [OK] [optional] whatweb
[16:15:36] [OK] [optional] wafw00f
[16:15:36] [OK] [optional] gobuster
[16:15:36] [OK] [optional] ffuf
[16:15:36] [OK] [optional] dirb
[16:15:36] [OK] [optional] wpscan
[16:15:36] [WARN] [optional] droopescan — not found (reduced coverage)
[16:15:36] [OK] [optional] sslscan
[16:15:36] [OK] [optional] testssl.sh
[16:15:36] [WARN] [optional] dalfox — not found (reduced coverage)
[16:15:36] [OK] [optional] subjack
[16:15:36] [OK] [optional] nuclei
[16:15:36] [OK] [optional] subfinder
[16:15:36] [WARN] [optional] amass — not found (reduced coverage)
[16:15:36] [OK] [optional] dnsrecon
[16:15:36] [OK] [optional] host
[16:15:36] [OK] [optional] whois
[16:15:36] [OK] [optional] dig
[16:15:36] [OK] [optional] jq
[16:15:36] [OK] [optional] python3
══════════════════════════════════════════════════════════════
▸ MODULE 00 — TARGET INFORMATION
══════════════════════════════════════════════════════════════
[16:15:36] [INFO] Target URL : https://example.com
[16:15:36] [INFO] Target Domain : example.com
[16:15:36] [INFO] Resolved IP : 104.18.27.120
[16:15:36] [INFO] Scheme : https
[16:15:36] [INFO] Output Dir : /root/websec-audit/results_example_com_20260323_161531
[16:15:36] [INFO] Timestamp : 20260323_161531
[16:15:36] [INFO] Mode : NORMAL
[16:15:36] [INFO] [INIT] Audit started against https://example.com
↳ Resolved IP: 104.18.27.120 | Mode: NORMAL
══════════════════════════════════════════════════════════════
▸ MODULE 01 — RECONNAISSANCE
══════════════════════════════════════════════════════════════
────────────────────────────────────────
● WHOIS Lookup
────────────────────────────────────────
[16:15:36] [OK] WHOIS saved → /root/websec-audit/results_example_com_20260323_161531/recon/whois.txt
[16:15:36] [INFO] Expiry : 2026-08-13
[16:15:36] [INFO] [RECON] WHOIS data collected for example.com
↳ Registrar: N/A | Expiry: 2026-08-13
────────────────────────────────────────
● DNS Record Enumeration
────────────────────────────────────────
[16:15:37] [OK] DNS records saved → /root/websec-audit/results_example_com_20260323_161531/recon/dns_records.txt
[16:15:37] [OK] SPF record present: "v=spf1 -all"
[16:15:37] [OK] DMARC record present: "v=DMARC1;p=reject;sp=reject;adkim=s;aspf=s"
────────────────────────────────────────
● DNS Zone Transfer (AXFR)
────────────────────────────────────────
[16:15:37] [OK] AXFR not permitted (correct)
────────────────────────────────────────
● Subdomain Enumeration
────────────────────────────────────────
[16:15:37] [INFO] Running subfinder...
[16:16:21] [INFO] Running dnsrecon...
[16:16:22] [OK] Discovered 37616 unique subdomains → /root/websec-audit/results_example_com_20260323_161531/recon/subdomains.txt
[16:16:22] [INFO] [RECON] Subdomain enumeration: 37616 hosts discovered
↳ 0000.example.com 001.example.com 01.example.com 02.example.com 03.example.com 03----may----rrdd.example.com 04.example.com 05----apr----rrdd.example.com 05.example.com 06----apr----rrdd.example.com
↳ Evidence: /root/websec-audit/results_example_com_20260323_161531/recon/subdomains.txt
────────────────────────────────────────
● Google Dork List
────────────────────────────────────────
[16:16:22] [OK] Google Dorks generated → /root/websec-audit/results_example_com_20260323_161531/recon/google_dorks.txt
══════════════════════════════════════════════════════════════
▸ MODULE 02 — PORT SCANNING
══════════════════════════════════════════════════════════════
[16:16:22] [INFO] Target : 104.18.27.120
[16:16:22] [INFO] Profile: top-1000
[16:16:22] [INFO] Flags : -sV -sC --open -T4
Nmap 7.93 ( https://nmap.org )
Usage: nmap [Scan Type(s)] [Options] {target specification}
TARGET SPECIFICATION:
Can pass hostnames, IP addresses, networks, etc.
Ex: scanme.nmap.org, microsoft.com/24, 192.168.0.1; 10.0.0-255.1-254
-iL <inputfilename>: Input from list of hosts/networks
-iR <num hosts>: Choose random targets
--exclude <host1[,host2][,host3],...>: Exclude hosts/networks
--excludefile <exclude_file>: Exclude list from file
HOST DISCOVERY:
-sL: List Scan - simply list targets to scan
-sn: Ping Scan - disable port scan
-Pn: Treat all hosts as online -- skip host discovery
-PS/PA/PU/PY[portlist]: TCP SYN/ACK, UDP or SCTP discovery to given ports
-PE/PP/PM: ICMP echo, timestamp, and netmask request discovery probes
-PO[protocol list]: IP Protocol Ping
-n/-R: Never do DNS resolution/Always resolve [default: sometimes]
--dns-servers <serv1[,serv2],...>: Specify custom DNS servers
--system-dns: Use OS's DNS resolver
--traceroute: Trace hop path to each host
SCAN TECHNIQUES:
-sS/sT/sA/sW/sM: TCP SYN/Connect()/ACK/Window/Maimon scans
-sU: UDP Scan
-sN/sF/sX: TCP Null, FIN, and Xmas scans
--scanflags <flags>: Customize TCP scan flags
-sI <zombie host[:probeport]>: Idle scan
-sY/sZ: SCTP INIT/COOKIE-ECHO scans
-sO: IP protocol scan
-b <FTP relay host>: FTP bounce scan
PORT SPECIFICATION AND SCAN ORDER:
-p <port ranges>: Only scan specified ports
Ex: -p22; -p1-65535; -p U:53,111,137,T:21-25,80,139,8080,S:9
--exclude-ports <port ranges>: Exclude the specified ports from scanning
-F: Fast mode - Scan fewer ports than the default scan
-r: Scan ports sequentially - don't randomize
--top-ports <number>: Scan <number> most common ports
--port-ratio <ratio>: Scan ports more common than <ratio>
SERVICE/VERSION DETECTION:
-sV: Probe open ports to determine service/version info
--version-intensity <level>: Set from 0 (light) to 9 (try all probes)
--version-light: Limit to most likely probes (intensity 2)
--version-all: Try every single probe (intensity 9)
--version-trace: Show detailed version scan activity (for debugging)
SCRIPT SCAN:
-sC: equivalent to --script=default
--script=<Lua scripts>: <Lua scripts> is a comma separated list of
directories, script-files or script-categories
--script-args=<n1=v1,[n2=v2,...]>: provide arguments to scripts
--script-args-file=filename: provide NSE script args in a file
--script-trace: Show all data sent and received
--script-updatedb: Update the script database.
--script-help=<Lua scripts>: Show help about scripts.
<Lua scripts> is a comma-separated list of script-files or
script-categories.
OS DETECTION:
-O: Enable OS detection
--osscan-limit: Limit OS detection to promising targets
--osscan-guess: Guess OS more aggressively
TIMING AND PERFORMANCE:
Options which take <time> are in seconds, or append 'ms' (milliseconds),
's' (seconds), 'm' (minutes), or 'h' (hours) to the value (e.g. 30m).
-T<0-5>: Set timing template (higher is faster)
--min-hostgroup/max-hostgroup <size>: Parallel host scan group sizes
--min-parallelism/max-parallelism <numprobes>: Probe parallelization
--min-rtt-timeout/max-rtt-timeout/initial-rtt-timeout <time>: Specifies
probe round trip time.
--max-retries <tries>: Caps number of port scan probe retransmissions.
--host-timeout <time>: Give up on target after this long
--scan-delay/--max-scan-delay <time>: Adjust delay between probes
--min-rate <number>: Send packets no slower than <number> per second
--max-rate <number>: Send packets no faster than <number> per second
FIREWALL/IDS EVASION AND SPOOFING:
-f; --mtu <val>: fragment packets (optionally w/given MTU)
-D <decoy1,decoy2[,ME],...>: Cloak a scan with decoys
-S <IP_Address>: Spoof source address
-e <iface>: Use specified interface
-g/--source-port <portnum>: Use given port number
--proxies <url1,[url2],...>: Relay connections through HTTP/SOCKS4 proxies
--data <hex string>: Append a custom payload to sent packets
--data-string <string>: Append a custom ASCII string to sent packets
--data-length <num>: Append random data to sent packets
--ip-options <options>: Send packets with specified ip options
--ttl <val>: Set IP time-to-live field
--spoof-mac <mac address/prefix/vendor name>: Spoof your MAC address
--badsum: Send packets with a bogus TCP/UDP/SCTP checksum
OUTPUT:
-oN/-oX/-oS/-oG <file>: Output scan in normal, XML, s|<rIpt kIddi3,
and Grepable format, respectively, to the given filename.
-oA <basename>: Output in the three major formats at once
-v: Increase verbosity level (use -vv or more for greater effect)
-d: Increase debugging level (use -dd or more for greater effect)
--reason: Display the reason a port is in a particular state
--open: Only show open (or possibly open) ports
--packet-trace: Show all packets sent and received
--iflist: Print host interfaces and routes (for debugging)
--append-output: Append to rather than clobber specified output files
--resume <filename>: Resume an aborted scan
--noninteractive: Disable runtime interactions via keyboard
--stylesheet <path/URL>: XSL stylesheet to transform XML output to HTML
--webxml: Reference stylesheet from Nmap.Org for more portable XML
--no-stylesheet: Prevent associating of XSL stylesheet w/XML output
MISC:
-6: Enable IPv6 scanning
-A: Enable OS detection, version detection, script scanning, and traceroute
--datadir <dirname>: Specify custom Nmap data file location
--send-eth/--send-ip: Send using raw ethernet frames or IP packets
--privileged: Assume that the user is fully privileged
--unprivileged: Assume the user lacks raw socket privileges
-V: Print version number
-h: Print this help summary page.
EXAMPLES:
nmap -v -A scanme.nmap.org
nmap -v -sn 192.168.0.0/16 10.0.0.0/8
nmap -v -iR 10000 -Pn -p 80
SEE THE MAN PAGE (https://nmap.org/book/man.html) FOR MORE OPTIONS AND EXAMPLES
Scantype not supported
[16:16:22] [ERROR] nmap failed to produce output
══════════════════════════════════════════════════════════════
▸ MODULE 03 — WEB FINGERPRINTING
══════════════════════════════════════════════════════════════
────────────────────────────────────────
● Technology Detection
────────────────────────────────────────
https://example.com [200 OK] Allow[GET, HEAD], Country[UNITED STATES][US], HTML5, HTTPServer[cloudflare], IP[104.18.27.120], Title[Example Domain], UncommonHeaders[cf-cache-status,cf-ray]
[16:16:24] [OK] WhatWeb → /root/websec-audit/results_example_com_20260323_161531/recon/whatweb.json
────────────────────────────────────────
● WAF Detection
────────────────────────────────────────
______
/ \
( Woof! )
\ ____/ )
,, ) (_
.-. - _______ ( |__|
()``; |==|_______) .)|__|
/ (' /|\ ( |__|
( / ) / | \ . |__|
\(_)_)) / | \ |__|
~ WAFW00F : v2.2.0 ~
The Web Application Firewall Fingerprinting Toolkit
[*] Checking https://example.com
[+] The site https://example.com is behind Cloudflare (Cloudflare Inc.) WAF.
[~] Number of requests: 2
[16:16:25] [INFO] WAF detected: Cloudflare (Cloudflare Inc.) WAF.
[16:16:25] [INFO] [FINGERPRINT] WAF detected: Cloudflare (Cloudflare Inc.) WAF.
↳ The target appears to be protected by a Web Application Firewall.
↳ Evidence: Cloudflare (Cloudflare Inc.) WAF.
────────────────────────────────────────
● Server Version Disclosure
────────────────────────────────────────
[16:16:25] [WARN] Version-leaking header: server: cloudflare
[16:16:25] [LOW] [FINGERPRINT] Version disclosure via 'Server' header
↳ The server reveals technology/version info in response headers.
↳ Evidence: server: cloudflare
↳ Fix: Remove or neutralise the 'Server' header in your web server configuration.
══════════════════════════════════════════════════════════════
▸ MODULE 04 — SSL/TLS ANALYSIS
══════════════════════════════════════════════════════════════
[16:16:25] [INFO] Running testssl.sh (full analysis)...
[16:19:43] [OK] testssl.sh → /root/websec-audit/results_example_com_20260323_161531/ssl/testssl.json
[16:19:44] [LOW] [SSL] testssl: [TLS1] offered (deprecated)
↳ Fix: Refer to testssl documentation for TLS1
[16:19:44] [LOW] [SSL] testssl: [TLS1_1] offered (deprecated)
↳ Fix: Refer to testssl documentation for TLS1_1
[16:19:44] [MEDIUM] [SSL] testssl: [cipherlist_3DES_IDEA] offered
↳ Fix: Refer to testssl documentation for cipherlist_3DES_IDEA
[16:19:44] [LOW] [SSL] testssl: [cipherlist_OBSOLETED] offered
↳ Fix: Refer to testssl documentation for cipherlist_OBSOLETED
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_xc013] TLSv1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_xc013
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_x2f] TLSv1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x2f
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_xc014] TLSv1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_xc014
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_x35] TLSv1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x35
[16:19:44] [MEDIUM] [SSL] testssl: [cipher-tls1_x0a] TLSv1 x0a DES-CBC3-SHA RSA 3DES 168 TLS_RSA_WITH_3DES_EDE_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x0a
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_1_xc013] TLSv1.1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_xc013
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_1_x2f] TLSv1.1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_x2f
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_1_xc014] TLSv1.1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_xc014
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_1_x35] TLSv1.1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_x35
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_2_xc009] TLSv1.2 xc009 ECDHE-ECDSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc009
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_2_xc00a] TLSv1.2 xc00a ECDHE-ECDSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc00a
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_2_xc023] TLSv1.2 xc023 ECDHE-ECDSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc023
[16:19:44] [LOW] [SSL] testssl: [cipher-tls1_2_xc024] TLSv1.2 xc024 ECDHE-ECDSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc024
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_xc013] TLSv1.2 xc013 ECDHE-RSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc013
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_x2f] TLSv1.2 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x2f
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_xc014] TLSv1.2 xc014 ECDHE-RSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc014
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_x35] TLSv1.2 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x35
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_xc027] TLSv1.2 xc027 ECDHE-RSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA25
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc027
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_x3c] TLSv1.2 x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x3c
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_xc028] TLSv1.2 xc028 ECDHE-RSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA38
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc028
[16:19:45] [LOW] [SSL] testssl: [cipher-tls1_2_x3d] TLSv1.2 x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x3d
[16:19:45] [HIGH] [SSL] testssl: [cert_keyUsage <hostCert#1>] Certificate incorrectly used for key encipherment: 'Digital Signature'
↳ Fix: Refer to testssl documentation for cert_keyUsage <hostCert#1>
[16:19:45] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#1>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
↳ Fix: Refer to testssl documentation for cert_chain_of_trust <hostCert#1>
[16:19:45] [MEDIUM] [SSL] testssl: [cert_expirationStatus <hostCert#1>] expires < 60 days (52)
↳ Fix: Refer to testssl documentation for cert_expirationStatus <hostCert#1>
[16:19:45] [MEDIUM] [SSL] testssl: [cert_notAfter <hostCert#1>] 2026-05-14 18:57
↳ Fix: Refer to testssl documentation for cert_notAfter <hostCert#1>
[16:19:45] [LOW] [SSL] testssl: [DNS_CAArecord <hostCert#1>] --
↳ Fix: Refer to testssl documentation for DNS_CAArecord <hostCert#1>
[16:19:45] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#2>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
↳ Fix: Refer to testssl documentation for cert_chain_of_trust <hostCert#2>
[16:19:45] [MEDIUM] [SSL] testssl: [cert_expirationStatus <hostCert#2>] expires < 60 days (52)
↳ Fix: Refer to testssl documentation for cert_expirationStatus <hostCert#2>
[16:19:45] [MEDIUM] [SSL] testssl: [cert_notAfter <hostCert#2>] 2026-05-14 18:57
↳ Fix: Refer to testssl documentation for cert_notAfter <hostCert#2>
[16:19:45] [LOW] [SSL] testssl: [DNS_CAArecord <hostCert#2>] --
↳ Fix: Refer to testssl documentation for DNS_CAArecord <hostCert#2>
[16:19:46] [LOW] [SSL] testssl: [HSTS] not offered
↳ Fix: Refer to testssl documentation for HSTS
[16:19:46] [MEDIUM] [SSL] testssl: [security_headers] --
↳ Fix: Refer to testssl documentation for security_headers
[16:19:46] [MEDIUM] [SSL] testssl: [BREACH] potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested
↳ Fix: Refer to testssl documentation for BREACH
[16:19:46] [LOW] [SSL] testssl: [SWEET32] uses 64 bit block ciphers
↳ Fix: Refer to testssl documentation for SWEET32
[16:19:46] [MEDIUM] [SSL] testssl: [BEAST_CBC_TLS1] ECDHE-RSA-AES128-SHA AES128-SHA ECDHE-RSA-AES256-SHA AES256-SHA DES-CBC3-SHA
↳ Fix: Refer to testssl documentation for BEAST_CBC_TLS1
[16:19:46] [LOW] [SSL] testssl: [BEAST] VULNERABLE -- but also supports higher protocols TLSv1.1 TLSv1.2 (likely mitigated)
↳ Fix: Refer to testssl documentation for BEAST
[16:19:46] [LOW] [SSL] testssl: [LUCKY13] potentially vulnerable, uses TLS CBC ciphers
↳ Fix: Refer to testssl documentation for LUCKY13
[16:19:46] [MEDIUM] [SSL] testssl: [overall_grade] B
↳ Fix: Refer to testssl documentation for overall_grade
[16:19:46] [LOW] [SSL] testssl: [TLS1] offered (deprecated)
↳ Fix: Refer to testssl documentation for TLS1
[16:19:46] [LOW] [SSL] testssl: [TLS1_1] offered (deprecated)
↳ Fix: Refer to testssl documentation for TLS1_1
[16:19:46] [MEDIUM] [SSL] testssl: [cipherlist_3DES_IDEA] offered
↳ Fix: Refer to testssl documentation for cipherlist_3DES_IDEA
[16:19:46] [LOW] [SSL] testssl: [cipherlist_OBSOLETED] offered
↳ Fix: Refer to testssl documentation for cipherlist_OBSOLETED
[16:19:46] [LOW] [SSL] testssl: [cipher-tls1_xc013] TLSv1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_xc013
[16:19:46] [LOW] [SSL] testssl: [cipher-tls1_x2f] TLSv1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x2f
[16:19:46] [LOW] [SSL] testssl: [cipher-tls1_xc014] TLSv1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_xc014
[16:19:46] [LOW] [SSL] testssl: [cipher-tls1_x35] TLSv1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x35
[16:19:46] [MEDIUM] [SSL] testssl: [cipher-tls1_x0a] TLSv1 x0a DES-CBC3-SHA RSA 3DES 168 TLS_RSA_WITH_3DES_EDE_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_x0a
[16:19:46] [LOW] [SSL] testssl: [cipher-tls1_1_xc013] TLSv1.1 xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_xc013
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_1_x2f] TLSv1.1 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_x2f
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_1_xc014] TLSv1.1 xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_xc014
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_1_x35] TLSv1.1 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_1_x35
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc009] TLSv1.2 xc009 ECDHE-ECDSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc009
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc00a] TLSv1.2 xc00a ECDHE-ECDSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc00a
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc023] TLSv1.2 xc023 ECDHE-ECDSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc023
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc024] TLSv1.2 xc024 ECDHE-ECDSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc024
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc013] TLSv1.2 xc013 ECDHE-RSA-AES128-SHA ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc013
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_x2f] TLSv1.2 x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x2f
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc014] TLSv1.2 xc014 ECDHE-RSA-AES256-SHA ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc014
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_x35] TLSv1.2 x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x35
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc027] TLSv1.2 xc027 ECDHE-RSA-AES128-SHA256 ECDH 253 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA25
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc027
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_x3c] TLSv1.2 x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x3c
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_xc028] TLSv1.2 xc028 ECDHE-RSA-AES256-SHA384 ECDH 253 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA38
↳ Fix: Refer to testssl documentation for cipher-tls1_2_xc028
[16:19:47] [LOW] [SSL] testssl: [cipher-tls1_2_x3d] TLSv1.2 x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
↳ Fix: Refer to testssl documentation for cipher-tls1_2_x3d
[16:19:47] [HIGH] [SSL] testssl: [cert_keyUsage <hostCert#1>] Certificate incorrectly used for key encipherment: 'Digital Signature'
↳ Fix: Refer to testssl documentation for cert_keyUsage <hostCert#1>
[16:19:47] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#1>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
↳ Fix: Refer to testssl documentation for cert_chain_of_trust <hostCert#1>
[16:19:47] [MEDIUM] [SSL] testssl: [cert_expirationStatus <hostCert#1>] expires < 60 days (52)
↳ Fix: Refer to testssl documentation for cert_expirationStatus <hostCert#1>
[16:19:48] [MEDIUM] [SSL] testssl: [cert_notAfter <hostCert#1>] 2026-05-14 18:57
↳ Fix: Refer to testssl documentation for cert_notAfter <hostCert#1>
[16:19:48] [LOW] [SSL] testssl: [DNS_CAArecord <hostCert#1>] --
↳ Fix: Refer to testssl documentation for DNS_CAArecord <hostCert#1>
[16:19:48] [CRITICAL] [SSL] testssl: [cert_chain_of_trust <hostCert#2>] Some certificate trust checks failed -> Mozilla (chain incomplete) , OK -> Microsoft Linux Java Apple
↳ Fix: Refer to testssl documentation for cert_chain_of_trust <hostCert#2>
[16:19:48] [MEDIUM] [SSL] testssl: [cert_expirationStatus <hostCert#2>] expires < 60 days (52)
↳ Fix: Refer to testssl documentation for cert_expirationStatus <hostCert#2>
[16:19:48] [MEDIUM] [SSL] testssl: [cert_notAfter <hostCert#2>] 2026-05-14 18:57
↳ Fix: Refer to testssl documentation for cert_notAfter <hostCert#2>
[16:19:48] [LOW] [SSL] testssl: [DNS_CAArecord <hostCert#2>] --
↳ Fix: Refer to testssl documentation for DNS_CAArecord <hostCert#2>
[16:19:48] [LOW] [SSL] testssl: [HSTS] not offered
↳ Fix: Refer to testssl documentation for HSTS
[16:19:48] [MEDIUM] [SSL] testssl: [security_headers] --
↳ Fix: Refer to testssl documentation for security_headers
[16:19:48] [MEDIUM] [SSL] testssl: [BREACH] potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested
↳ Fix: Refer to testssl documentation for BREACH
[16:19:48] [LOW] [SSL] testssl: [SWEET32] uses 64 bit block ciphers
↳ Fix: Refer to testssl documentation for SWEET32
[16:19:48] [MEDIUM] [SSL] testssl: [BEAST_CBC_TLS1] ECDHE-RSA-AES128-SHA AES128-SHA ECDHE-RSA-AES256-SHA AES256-SHA DES-CBC3-SHA
↳ Fix: Refer to testssl documentation for BEAST_CBC_TLS1
[16:19:48] [LOW] [SSL] testssl: [BEAST] VULNERABLE -- but also supports higher protocols TLSv1.1 TLSv1.2 (likely mitigated)
↳ Fix: Refer to testssl documentation for BEAST
[16:19:48] [LOW] [SSL] testssl: [LUCKY13] potentially vulnerable, uses TLS CBC ciphers
↳ Fix: Refer to testssl documentation for LUCKY13
[16:19:48] [MEDIUM] [SSL] testssl: [overall_grade] B
↳ Fix: Refer to testssl documentation for overall_grade
────────────────────────────────────────
● Certificate Expiry Check
────────────────────────────────────────
[16:19:48] [MEDIUM] [SSL] Certificate expires in 52 days
↳ Evidence: May 14 18:57:50 2026 GMT
↳ Fix: Plan certificate renewal.
────────────────────────────────────────
● HSTS (HTTP Strict Transport Security)
────────────────────────────────────────
[16:19:49] [MEDIUM] [SSL] HSTS header not configured
↳ Strict-Transport-Security is absent — browsers may access the site over HTTP.
↳ Fix: Add: Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
══════════════════════════════════════════════════════════════
▸ MODULE 05 — HTTP SECURITY HEADERS
══════════════════════════════════════════════════════════════
[16:19:49] [INFO] Response headers captured → /root/websec-audit/results_example_com_20260323_161531/headers/response_headers.txt
HTTP/2 200
date: Mon, 23 Mar 2026 15:19:49 GMT
content-type: text/html
cf-ray: 9e0e6aa3fba2cf91-MAD
last-modified: Tue, 17 Mar 2026 17:24:13 GMT
allow: GET, HEAD
accept-ranges: bytes
age: 1578
cf-cache-status: HIT
server: cloudflare
[16:19:49] [LOW] [HEADERS] Permissions-Policy missing
↳ The response is missing the 'permissions-policy' security header.
↳ Fix: Add: Permissions-Policy: geolocation=(), microphone=(), camera=()
[16:19:49] [LOW] [HEADERS] Cross-Origin-Resource-Policy (CORP) missing
↳ The response is missing the 'cross-origin-resource-policy' security header.
↳ Fix: Add: Cross-Origin-Resource-Policy: same-origin
[16:19:49] [LOW] [HEADERS] Cross-Origin-Opener-Policy (COOP) missing
↳ The response is missing the 'cross-origin-opener-policy' security header.
↳ Fix: Add: Cross-Origin-Opener-Policy: same-origin
[16:19:49] [LOW] [HEADERS] X-Content-Type-Options missing — MIME sniffing risk
↳ The response is missing the 'x-content-type-options' security header.
↳ Fix: Add: X-Content-Type-Options: nosniff
[16:19:49] [MEDIUM] [HEADERS] X-Frame-Options missing — clickjacking risk
↳ The response is missing the 'x-frame-options' security header.
↳ Fix: Add: X-Frame-Options: SAMEORIGIN
[16:19:49] [MEDIUM] [HEADERS] Content-Security-Policy (CSP) missing
↳ The response is missing the 'content-security-policy' security header.
↳ Fix: Implement a strict CSP to mitigate XSS and data injection attacks.
[16:19:49] [LOW] [HEADERS] Referrer-Policy missing
↳ The response is missing the 'referrer-policy' security header.
↳ Fix: Add: Referrer-Policy: strict-origin-when-cross-origin
────────────────────────────────────────
● Sensitive Header Exposure
────────────────────────────────────────
[16:19:49] [LOW] [HEADERS] Informative header exposed: Server
↳ Server reveals technology details via 'Server' header.
↳ Evidence: server: cloudflare
↳ Fix: Remove or anonymise the 'Server' header in your server configuration.
────────────────────────────────────────
● Cookie Security Flags
────────────────────────────────────────
[16:19:49] [INFO] No Set-Cookie headers found in initial response
────────────────────────────────────────
● HTTP to HTTPS Redirect
────────────────────────────────────────
[16:19:49] [MEDIUM] [HEADERS] HTTP does not redirect to HTTPS (HTTP 200)
↳ Requests over HTTP are not automatically upgraded to HTTPS.
↳ Evidence: http://example.com → 200
↳ Fix: Configure a permanent 301 redirect from HTTP to HTTPS.
[16:19:49] [LOW] [HEADERS] Cache-Control header missing
↳ Without Cache-Control, sensitive pages may be cached by intermediaries.
↳ Fix: Add: Cache-Control: no-store, no-cache on authenticated/sensitive pages.
══════════════════════════════════════════════════════════════
▸ MODULE 06 — DIRECTORY & FILE ENUMERATION
══════════════════════════════════════════════════════════════
────────────────────────────────────────
● gobuster (directory)
────────────────────────────────────────
[16:20:01] [OK] 0 paths found → /root/websec-audit/results_example_com_20260323_161531/dirs/gobuster_dirs.txt
────────────────────────────────────────
● Sensitive File Probing
────────────────────────────────────────
[16:20:05] [OK] No high-priority sensitive files detected
══════════════════════════════════════════════════════════════
▸ MODULE 07 — NIKTO WEB SERVER SCAN
══════════════════════════════════════════════════════════════
[16:20:05] [INFO] Running Nikto (may take several minutes)...
[16:20:05] [WARN] Nikto did not produce output
══════════════════════════════════════════════════════════════
▸ MODULE 08 — SQL INJECTION (sqlmap)
══════════════════════════════════════════════════════════════
[16:20:05] [INFO] Running sqlmap on https://example.com
[16:20:05] [OK] No SQL injection detected on the main target URL
[16:20:05] [INFO] [SQLI] No obvious SQLi on primary URL
↳ Manual testing with specific parameters recommended.
[16:20:05] [INFO] sqlmap results → /root/websec-audit/results_example_com_20260323_161531/vulns/sqlmap
══════════════════════════════════════════════════════════════
▸ MODULE 09 — CROSS-SITE SCRIPTING (XSS)
══════════════════════════════════════════════════════════════
────────────────────────────────────────
● Reflected XSS Probe
────────────────────────────────────────
[16:21:11] [OK] No reflected XSS detected in common parameters
[16:21:11] [INFO] XSS tests → /root/websec-audit/results_example_com_20260323_161531/vulns/xss
══════════════════════════════════════════════════════════════
▸ MODULE 10 — CMS DETECTION & SCANNING
══════════════════════════════════════════════════════════════
[16:21:12] [INFO] Detected CMS: unknown
[16:21:12] [INFO] [CMS] CMS detected: unknown
══════════════════════════════════════════════════════════════
▸ MODULE 11 — CORS MISCONFIGURATION
══════════════════════════════════════════════════════════════
[16:21:12] [INFO] Testing 7 adversarial origins...
[16:21:14] [INFO] CORS tests → /root/websec-audit/results_example_com_20260323_161531/misc/cors_tests.txt
══════════════════════════════════════════════════════════════
▸ MODULE 12 — OPEN REDIRECT
══════════════════════════════════════════════════════════════
[16:21:14] [INFO] Testing 25 params × 10 payloads...
[16:23:06] [OK] No open redirects detected in common parameters
══════════════════════════════════════════════════════════════
▸ MODULE 13 — SERVER-SIDE REQUEST FORGERY (SSRF)
══════════════════════════════════════════════════════════════
[16:23:06] [INFO] Testing 24 params × 16 SSRF payloads...
[16:26:05] [OK] No in-band SSRF detected
[16:26:05] [INFO] [SSRF] No in-band SSRF detected on common parameters
↳ Out-of-band (OOB) SSRF may still exist. Use Burp Collaborator or Interactsh for blind testing.
[16:26:05] [INFO] SSRF tests → /root/websec-audit/results_example_com_20260323_161531/misc/ssrf_tests.txt
══════════════════════════════════════════════════════════════
▸ MODULE 14 — SUBDOMAIN TAKEOVER
══════════════════════════════════════════════════════════════
────────────────────────────────────────
● subjack
────────────────────────────────────────
[16:41:12] [WARN] Audit interrupted by user (SIGINT/SIGTERM)
[INTERRUPTED] PID=79121
══════════════════════════════════════════════════════════════
▸ GENERATING REPORTS
══════════════════════════════════════════════════════════════